Check Point Reference: | CPAI-2013-2538 |
Date Published: | 13 Aug 2013 |
Severity: | High |
Last Updated: | Monday 06 January, 2025 |
Source: | CVE-2013-0149 |
Protection Provided by: |
Security Gateway |
Who is Vulnerable? | Cisco IOS 12.0 through 12.4 Cisco IOS 15.0 through 15.3 Cisco IOS-XE 2.x through 3.9.xS ASA and PIX 7.x through 9.1 FWSM NX-OS StarOS before 14.0.50488 |
Vulnerability Description | A denial of service vulnerability has been reported in Multiple Cisco Products. |
Vulnerability Details | The vulnerability is due to improper validation of the Link State Advertisement (LSA) type 1 packets before performing operations on the LSA database. Successful exploitation may cause routing disruption on the server, resulting in a denial of service condition. |
IPS will detect and block specialy crafted Link State Advertisement packets.
In order for the protection to be activated, update your product to the latest update. For information on how to update , go to SBP-2006-05, Protection tab and select the version of your choice.
SmartView Tracker will log the following entries:
Attack Name: Cisco Protection Violation
Attack Information: Cisco OSPF LSA Manipulation Denial of Service